1 // Copyright 2015 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file.
5 #ifndef CHROME_BROWSER_NET_CERTIFICATE_ERROR_REPORTER_H_
6 #define CHROME_BROWSER_NET_CERTIFICATE_ERROR_REPORTER_H_
11 #include "base/macros.h"
12 #include "base/memory/scoped_ptr.h"
13 #include "net/url_request/url_request.h"
17 class URLRequestContext
;
21 namespace chrome_browser_net
{
23 class CertLoggerRequest
;
25 // Provides functionality for sending reports about invalid SSL
26 // certificate chains to a report collection server.
27 class CertificateErrorReporter
: public net::URLRequest::Delegate
{
29 // These represent the types of reports that can be sent.
31 // A report of a certificate chain that failed a certificate pinning
33 REPORT_TYPE_PINNING_VIOLATION
,
34 // A report for an invalid certificate chain that is being sent for
35 // a user who has opted-in to the extended reporting program.
36 REPORT_TYPE_EXTENDED_REPORTING
39 // Represents whether or not to send cookies along with reports sent
41 enum CookiesPreference
{ SEND_COOKIES
, DO_NOT_SEND_COOKIES
};
43 // Create a certificate error reporter that will send certificate
44 // error reports to |upload_url|, using |request_context| as the
45 // context for the reports. |cookies_preference| controls whether
46 // cookies will be sent along with the reports.
47 CertificateErrorReporter(net::URLRequestContext
* request_context
,
48 const GURL
& upload_url
,
49 CookiesPreference cookies_preference
);
51 ~CertificateErrorReporter() override
;
53 // Construct, serialize, and send a certificate report to the report
54 // collection server containing the |ssl_info| associated with a
55 // connection to |hostname|.
57 // SendReport actually sends the report over the network; callers are
58 // responsible for enforcing any preconditions (such as obtaining user
59 // opt-in, only sending reports for certain hostnames, checking for
60 // incognito mode, etc.).
61 virtual void SendReport(ReportType type
,
62 const std::string
& hostname
,
63 const net::SSLInfo
& ssl_info
);
65 // net::URLRequest::Delegate
66 void OnResponseStarted(net::URLRequest
* request
) override
;
67 void OnReadCompleted(net::URLRequest
* request
, int bytes_read
) override
;
70 // Create a URLRequest with which to send a certificate report to the
72 virtual scoped_ptr
<net::URLRequest
> CreateURLRequest(
73 net::URLRequestContext
* context
);
75 // Serialize and send a CertLoggerRequest protobuf to the report
77 void SendCertLoggerRequest(const CertLoggerRequest
& request
);
79 // Populate the CertLoggerRequest for a report.
80 static void BuildReport(const std::string
& hostname
,
81 const net::SSLInfo
& ssl_info
,
82 CertLoggerRequest
* out_request
);
84 // Performs post-report cleanup.
85 void RequestComplete(net::URLRequest
* request
);
87 net::URLRequestContext
* const request_context_
;
88 const GURL upload_url_
;
90 // Owns the contained requests.
91 std::set
<net::URLRequest
*> inflight_requests_
;
93 CookiesPreference cookies_preference_
;
95 DISALLOW_COPY_AND_ASSIGN(CertificateErrorReporter
);
98 } // namespace chrome_browser_net
100 #endif // CHROME_BROWSER_NET_CERTIFICATE_ERROR_REPORTER_H_